Providing Virtualized Private Network Tunnels
    31.
    发明申请
    Providing Virtualized Private Network Tunnels 有权
    提供虚拟化专用网络隧道

    公开(公告)号:US20140109174A1

    公开(公告)日:2014-04-17

    申请号:US14029088

    申请日:2013-09-17

    Abstract: Various aspects of the disclosure relate to providing a per-application policy-controlled virtual private network (VPN) tunnel. In some embodiments, tickets may be used to provide access to an enterprise resource without separate authentication of the application and, in some instances, can be used in such a manner as to provide a seamless experience to the user when reestablishing a per-application policy controlled VPN tunnel during the lifetime of the ticket. Additional aspects relate to an access gateway providing updated policy information and tickets to a mobile device. Other aspects relate to selectively wiping the tickets from a secure container of the mobile device. Yet further aspects relate to operating applications in multiple modes, such as a managed mode and an unmanaged mode, and providing authentication-related services based on one or more of the above aspects.

    Abstract translation: 本公开的各个方面涉及提供每应用程序策略控制的虚拟专用网(VPN)隧道。 在一些实施例中,票据可以用于提供对企业资源的访问,而不需要对应用的单独认证,并且在某些情况下可以以这样的方式使用,以便在重新建立每个应用程序策略时向用户提供无缝体验 在票的生命周期内控制VPN隧道。 另外的方面涉及提供对移动设备的更新的策略信息和故障单的接入网关。 其他方面涉及从移动设备的安全容器中选择性地擦拭票据。 另外的方面涉及在诸如管理模式和非托管模式的多种模式中的操作应用,以及基于上述方面中的一个或多个来提供与认证相关的服务。

    CONTROLLING MOBILE DEVICE ACCESS TO SECURE DATA
    32.
    发明申请
    CONTROLLING MOBILE DEVICE ACCESS TO SECURE DATA 有权
    控制移动设备访问以保护数据

    公开(公告)号:US20140108794A1

    公开(公告)日:2014-04-17

    申请号:US14041911

    申请日:2013-09-30

    Abstract: Various aspects of the disclosure relate to providing secure containers or data vaults for data of one or more managed applications. In some embodiments, each managed application may be assigned its own private data vault and/or may be assigned a shared data vault that is accessible to at least one other managed application. As the managed application executes, calls for access to the data may be intercepted and redirected to the secure containers. Data stored in a secure container may be encrypted according to a policy. Other aspects relate to deleting data from a secure container, such as via a selective wipe of data associated with a managed application. Further aspects relate to configuring and creating the secure containers, retrieving key information required to encrypt/decrypt the data stored in the secure containers, and publishing the managed applications, policy information and key information for download to a mobile device.

    Abstract translation: 本公开的各个方面涉及为一个或多个被管理应用的数据提供安全容器或数据保管库。 在一些实施例中,可以向每个被管理的应用分配其自己的专用数据保险库和/或可以分配可由至少一个其他被管理应用访问的共享数据保险库。 随着托管应用程序的执行,对数据访问的调用可能被拦截并重定向到安全容器。 存储在安全容器中的数据可以根据策略进行加密。 其他方面涉及从安全容器中删除数据,例如经由与被管理应用相关联的数据的选择性擦除。 其他方面涉及配置和创建安全容器,检索加密/解密存储在安全容器中的数据所需的密钥信息,以及发布被管理应用,策略信息和用于下载的移动设备的密钥信息。

    Policy-Based Application Management

    公开(公告)号:US20140040978A1

    公开(公告)日:2014-02-06

    申请号:US14044972

    申请日:2013-10-03

    Abstract: Improved techniques for managing enterprise applications on mobile devices are described herein. Each enterprise mobile application running on the mobile device has an associated policy through which it interacts with its environment. The policy selectively blocks or allows activities involving the enterprise application in accordance with rules established by the enterprise. Together, the enterprise applications running on the mobile device form a set of managed applications. Managed applications are typically allowed to exchange data with other managed applications, but are blocked from exchanging data with other applications, such as the user's own personal applications. Policies may be defined to manage data sharing, mobile resource management, application specific information, networking and data access solutions, device cloud and transfer, dual mode application software, enterprise app store access, and virtualized application and resources, among other things.

    Application with Multiple Operation Modes
    35.
    发明申请

    公开(公告)号:US20200007557A1

    公开(公告)日:2020-01-02

    申请号:US16567238

    申请日:2019-09-11

    Abstract: A method and system for operating an application with multiple modes are described. A plurality of applications may be presented to a user on a mobile device and one of the displayed applications may be selected. The selected application may have one or more contexts that are determined based on one or more operational parameters. For example, a context for the selected application may be that the application is configured to access an enterprise account. Based on the context, the selected application may be run on the mobile device in one of a plurality of operations modes. The operation modes may comprise managed, unmanaged, and partially managed modes, among others.

    Facilitating communication between mobile applications

    公开(公告)号:US10346622B2

    公开(公告)日:2019-07-09

    申请号:US15634193

    申请日:2017-06-27

    Abstract: Methods and systems for communicating information between mobile applications are presented. In some embodiments, a mobile device may determine that a plurality of applications are running on the mobile device. The mobile device may determine that each application of the plurality of applications uses a shared passcode to encrypt information about a persistent state. The mobile device may generate a beacon that includes encrypted state information. The mobile device may maintain state information across the plurality of applications beyond the lifetime of any one of the plurality of applications by transmitting the beacon from a first application to a second application before the first application's lifetime is completed.

    Policy-Based Application Management
    38.
    发明申请
    Policy-Based Application Management 审中-公开
    基于策略的应用管理

    公开(公告)号:US20170054760A1

    公开(公告)日:2017-02-23

    申请号:US15345584

    申请日:2016-11-08

    Abstract: Improved techniques for managing enterprise applications on mobile devices are described herein. Each enterprise mobile application running on the mobile device has an associated policy through which it interacts with its environment. The policy selectively blocks or allows activities involving the enterprise application in accordance with rules established by the enterprise. Together, the enterprise applications running on the mobile device form a set of managed applications. Managed applications are typically allowed to exchange data with other managed applications, but are blocked from exchanging data with other applications, such as the user's own personal applications. Policies may be defined to manage data sharing, mobile resource management, application specific information, networking and data access solutions, device cloud and transfer, dual mode application software, enterprise app store access, and virtualized application and resources, among other things.

    Abstract translation: 本文描述了用于在移动设备上管理企业应用的改进的技术。 在移动设备上运行的每个企业移动应用都具有与其环境交互的相关策略。 该策略根据企业规定有选择性地阻止或者允许涉及企业应用的活动。 一起,在移动设备上运行的企业应用程序组成一组受管应用程序。 管理应用程序通常被允许与其他受管应用程序交换数据,但被阻止与其他应用程序(例如用户自己的个人应用程序)交换数据。 可以定义政策来管理数据共享,移动资源管理,应用程序特定信息,网络和数据访问解决方案,设备云和传输,双模式应用软件,企业应用商店访问以及虚拟化应用和资源等。

    CONTROLLING MOBILE DEVICE ACCESS TO SECURE DATA
    39.
    发明申请
    CONTROLLING MOBILE DEVICE ACCESS TO SECURE DATA 有权
    控制移动设备访问以保护数据

    公开(公告)号:US20170048204A9

    公开(公告)日:2017-02-16

    申请号:US14607593

    申请日:2015-01-28

    Abstract: Various aspects of the disclosure relate to providing secure containers or data vaults for data of one or more managed applications. In some embodiments, each managed application may be assigned its own private data vault and/or may be assigned a shared data vault that is accessible to at least one other managed application. As the managed application executes, calls for access to the data may be intercepted and redirected to the secure containers. Data stored in a secure container may be encrypted according to a policy. Other aspects relate to deleting data from a secure container, such as via a selective wipe of data associated with a managed application. Further aspects relate to configuring and creating the secure containers, retrieving key information required to encrypt/decrypt the data stored in the secure containers, and publishing the managed applications, policy information and key information for download to a mobile device.

    Abstract translation: 本公开的各个方面涉及为一个或多个被管理应用的数据提供安全容器或数据保管库。 在一些实施例中,可以向每个被管理的应用分配其自己的专用数据保险库和/或可以分配可由至少一个其他被管理应用访问的共享数据保险库。 随着托管应用程序的执行,对数据访问的调用可能被拦截并重定向到安全容器。 存储在安全容器中的数据可以根据策略进行加密。 其他方面涉及从安全容器中删除数据,例如经由与被管理应用相关联的数据的选择性擦除。 其他方面涉及配置和创建安全容器,检索加密/解密存储在安全容器中的数据所需的密钥信息,以及发布被管理应用,策略信息和用于下载的移动设备的密钥信息。

    Validating the identity of a mobile application for mobile application management
    40.
    发明授权
    Validating the identity of a mobile application for mobile application management 有权
    验证用于移动应用程序管理的移动应用程序的身份

    公开(公告)号:US09270674B2

    公开(公告)日:2016-02-23

    申请号:US13898167

    申请日:2013-05-20

    Abstract: A method of managing access to enterprise resources is provided. An access manager may operate at a mobile device to validate a mobile application installed at that mobile device. If the access manager does not successfully validate the mobile application, the access manager may prevent the mobile application from accessing computing resource. If the access manager does successfully validate the mobile application, then the access manager may identify the mobile application as a trusted mobile application. The access manager may thus permit the trusted mobile application to access the computing resource.

    Abstract translation: 提供了一种管理企业资源访问的方法。 访问管理器可以在移动设备上操作以验证安装在该移动设备处的移动应用。 如果访问管理器没有成功地验证移动应用程序,则访问管理器可以阻止移动应用程序访问计算资源。 如果访问管理器成功验证移动应用程序,则访问管理器可以将移动应用识别为可信赖的移动应用。 因此,访问管理器可以允许受信任的移动应用访问计算资源。

Patent Agency Ranking